Insider Threat Program Hunt Team Analyst (15h Left)
Company: Leidos
Location: Annandale
Posted on: November 4, 2025
|
|
|
Job Description:
Job Description Description The Digital Modernization Sector at
Leidos currently has an opening for a Hunt Analyst supporting the
HEITS Contract as part of the Department of Homeland Security (DHS)
Insider Threat Program (ITP). This is an exciting opportunity to
use your experience to support, sustain, design and evolve the
database backbone of the ITP. The ITP mission is to identify
insider threats to the department by utilizing advanced analytics,
monitoring, and data correlation which in turn help address and
eliminate potential threat actors from compromising the DHS mission
in safeguarding the homeland. The selected candidate will be
responsible for the following: - Normal business hours will be
defined as a schedule combination to include weekdays 2pm-10pm
shift and weekends 6am-6pm shift. The candidate will have 2- 3 days
off based on the schedule determined & the work week should not
exceed 40 hours. - This position is expected to eventually move to
shift work to meet the requirement of 24x7 operations at an
undetermined later date. Examine, analyze, and search insider
threat data to identify trends, patterns, and insights of potential
insider threat indicators. - Provide analytical, program support
services related to the operation of UAM/ UEBA tool. - Monitor UAM
platform to identify emerging requirements related to insider
threat events and coordinate across the enterprise to ensure timely
response. - Conduct further research on the UAM platform to
identify patterns of concerning behavior related to a potential
insider threat risk to the DHS enterprise. - Provide proactive
insider threat-based hunting across the DHS enterprise network,
leveraging methodologies and behavioral analytics to detect,
investigate, and mitigate anomalous activity and policy violations
indicative of malicious insider behavior. - Conduct continuous hunt
operations across data and log sources, DHS platforms, EDR tools,
and network traffic to identify patterns of insider threat
behavior. - Identify mitigation strategies to assist the
investigative team in effectively reducing insider threat risk. -
Utilize UEBA (User and Entity Behavior Analytics) platforms and
techniques to baseline user activity and detect deviations. -
Provide timely response to critical/high UAM alerts (within 4 hours
during normal business hours). Basic Qualifications: - Bachelors
degree and (12) years of prior relevant insider threat experience
or Masters with (10) years of prior relevant experience. Additional
years of experience with requisite certifications will be
considered in leu of degree. - Minimum of 4 years demonstrated
knowledge of the intelligence cycle, analytic techniques, systems,
processes, and organizations. - Minimum of 4 years demonstrated
knowledge of Threat Assessment & Mitigation Strategies. - Have
excellent written and verbal skills with ability to deliver
briefings to a diverse group of audiences. - Possess knowledge of
current domestic and international threats to U.S. national
security interests. - Be adept at establishing networks with
relevant security, personnel, and prevention stakeholders to foster
program utilization. - Be a self-starter capable of working
independently to promote program goals. - Working knowledge of User
Activity Monitoring Software (UAM) and solutions. - Working
knowledge of Cybersecurity toolsets designed to support ITP mission
activities. - Working Knowledge of Open-Source toolsets. - Working
Knowledge of Insider Threat Frameworks; Pathway to Violence &
Critical Pathway. - Current TS/SCI and Must be a US Citizen. -
Ability to obtain DHS EOD SCI and willingness to undergo CI
Polygraph. Preferred Qualifications: - Master’s degree from an
accredited college or university in Criminal Justice, Homeland
security, Cyber Security, or related field - Proven experience (10
years) in Intelligence Analysis - Experience with User Activity
Monitoring products and platforms - Proven experience (4 years) in
Threat Assessment & Mitigation - Certified Counter-Insider Threat
Professional - Fundamentals (CCITP-F) - Certified Counter-Insider
Threat Professional - Analysis (CCITP-A) - Completion of Center for
Development of Security Excellence (CDSE) Insider Threat Detection
Analysis Course (ITDAC) - Completion of Workplace Assessment of
Violence Risk (WAVR-21) Workshop - Completion of Center for
Development of Security Excellence (CDSE) Curriculums;
INT311.CU/INT312.CU/CI201.CU At Leidos, we don’t want someone who
"fits the mold"—we want someone who melts it down and builds
something better. This is a role for the restless, the
over-caffeinated, the ones who ask, “what’s next?” before the dust
settles on “what’s now.” If you’re already scheming step 20 while
everyone else is still debating step 2… good. You’ll fit right in.
Original Posting:October 27, 2025 For U.S. Positions: While subject
to change based on business needs, Leidos reasonably anticipates
that this job requisition will remain open for at least 3 days with
an anticipated close date of no earlier than 3 days after the
original posting date as listed above. Pay Range:Pay Range
$101,400.00 - $183,300.00 The Leidos pay range for this job level
is a general guideline only and not a guarantee of compensation or
salary. Additional factors considered in extending an offer include
(but are not limited to) responsibilities of the job, education,
experience, knowledge, skills, and abilities, as well as internal
equity, alignment with market data, applicable bargaining agreement
(if any), or other law. About Leidos Leidos is an industry and
technology leader serving government and commercial customers with
smarter, more efficient digital and mission innovations.
Headquartered in Reston, Virginia, with 47,000 global employees,
Leidos reported annual revenues of approximately $16.7 billion for
the fiscal year ended January 3, 2025. For more information, visit
www.Leidos.com. Pay and Benefits Pay and benefits are fundamental
to any career decision. That's why we craft compensation packages
that reflect the importance of the work we do for our customers.
Employment benefits include competitive compensation, Health and
Wellness programs, Income Protection, Paid Leave and Retirement.
More details are available at www.leidos.com/careers/pay-benefits.
Securing Your Data Beware of fake employment opportunities using
Leidos’ name. Leidos will never ask you to provide payment-related
information during any part of the employment application process
(i.e., ask you for money), nor will Leidos ever advance money as
part of the hiring process (i.e., send you a check or money order
before doing any work). Further, Leidos will only communicate with
you through emails that are generated by the Leidos.com automated
system – never from free commercial services (e.g., Gmail, Yahoo,
Hotmail) or via WhatsApp, Telegram, etc. If you received an email
purporting to be from Leidos that asks for payment-related
information or any other personal information (e.g., about you or
your previous employer), and you are concerned about its
legitimacy, please make us aware immediately by emailing us at
LeidosCareersFraud@leidos.com. If you believe you are the victim of
a scam, contact your local law enforcement and report the incident
to the U.S. Federal Trade Commission. Commitment to
Non-Descrimination All qualified applicants will receive
consideration for employment without regard to sex, race,
ethnicity, age, national origin, citizenship, religion, physical or
mental disability, medical condition, genetic information,
pregnancy, family structure, marital status, ancestry, domestic
partner status, sexual orientation, gender identity or expression,
veteran or military status, or any other basis prohibited by law.
Leidos will also consider for employment qualified applicants with
criminal histories consistent with relevant laws.
Keywords: Leidos, Annandale , Insider Threat Program Hunt Team Analyst (15h Left), IT / Software / Systems , Annandale, Virginia